7.8

CVE-2024-36358

A link following vulnerability in Trend Micro Deep Security 20.x agents below build 20.0.1-3180 could allow a local attacker to escalate privileges on affected installations.

Please note: an attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability.
Verknüpft mit AI von unstrukturierten Daten zu bestehenden CPE der NVD
Diese Information steht angemeldeten Benutzern zur Verfügung. Login Login
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
TrendmicroDeep Security Agent Version20.0 Updateupdate1194 SwEditionlong_term_support
   LinuxLinux Kernel Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate1304 SwEditionlong_term_support
   LinuxLinux Kernel Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate1337 SwEditionlong_term_support
   LinuxLinux Kernel Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate1559 SwEditionlong_term_support
   LinuxLinux Kernel Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate1681 SwEditionlong_term_support
   LinuxLinux Kernel Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate1822 SwEditionlong_term_support
   LinuxLinux Kernel Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate1876 SwEditionlong_term_support
   LinuxLinux Kernel Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate2009 SwEditionlong_term_support
   LinuxLinux Kernel Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate2204 SwEditionlong_term_support
   LinuxLinux Kernel Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate2395 SwEditionlong_term_support
   LinuxLinux Kernel Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate2593 SwEditionlong_term_support
   LinuxLinux Kernel Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate2971 SwEditionlong_term_support
   LinuxLinux Kernel Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate3165 SwEditionlong_term_support
   LinuxLinux Kernel Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate3288 SwEditionlong_term_support
   LinuxLinux Kernel Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate3445 SwEditionlong_term_support
   LinuxLinux Kernel Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate3770 SwEditionlong_term_support
   LinuxLinux Kernel Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate4185 SwEditionlong_term_support
   LinuxLinux Kernel Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate4416 SwEditionlong_term_support
   LinuxLinux Kernel Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate4726 SwEditionlong_term_support
   LinuxLinux Kernel Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate4959 SwEditionlong_term_support
   LinuxLinux Kernel Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate5137 SwEditionlong_term_support
   LinuxLinux Kernel Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate5394 SwEditionlong_term_support
   LinuxLinux Kernel Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate5512 SwEditionlong_term_support
   LinuxLinux Kernel Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate5761 SwEditionlong_term_support
   LinuxLinux Kernel Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate5953 SwEditionlong_term_support
   LinuxLinux Kernel Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate6313 SwEditionlong_term_support
   LinuxLinux Kernel Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate6658 SwEditionlong_term_support
   LinuxLinux Kernel Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate6912 SwEditionlong_term_support
   LinuxLinux Kernel Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate7119 SwEditionlong_term_support
   LinuxLinux Kernel Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate7303 SwEditionlong_term_support
   LinuxLinux Kernel Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate7476 SwEditionlong_term_support
   LinuxLinux Kernel Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate7719 SwEditionlong_term_support
   LinuxLinux Kernel Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate7943 SwEditionlong_term_support
   LinuxLinux Kernel Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate8137 SwEditionlong_term_support
   LinuxLinux Kernel Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate8268 SwEditionlong_term_support
   LinuxLinux Kernel Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate8438 SwEditionlong_term_support
   LinuxLinux Kernel Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate8453 SwEditionlong_term_support
   LinuxLinux Kernel Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate877 SwEditionlong_term_support
   LinuxLinux Kernel Version-
TrendmicroDeep Security Agent Version20.0.1 Updateupdate690 SwEditionlong_term_support
   LinuxLinux Kernel Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate1337 SwEditionlong_term_support
   MicrosoftWindows Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate1559 SwEditionlong_term_support
   MicrosoftWindows Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate1681 SwEditionlong_term_support
   MicrosoftWindows Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate1822 SwEditionlong_term_support
   MicrosoftWindows Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate1876 SwEditionlong_term_support
   MicrosoftWindows Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate2009 SwEditionlong_term_support
   MicrosoftWindows Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate2204 SwEditionlong_term_support
   MicrosoftWindows Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate2419 SwEditionlong_term_support
   MicrosoftWindows Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate2593 SwEditionlong_term_support
   MicrosoftWindows Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate2740 SwEditionlong_term_support
   MicrosoftWindows Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate2921 SwEditionlong_term_support
   MicrosoftWindows Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate3165 SwEditionlong_term_support
   MicrosoftWindows Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate3288 SwEditionlong_term_support
   MicrosoftWindows Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate3445 SwEditionlong_term_support
   MicrosoftWindows Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate3530 SwEditionlong_term_support
   MicrosoftWindows Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate3771 SwEditionlong_term_support
   MicrosoftWindows Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate3964 SwEditionlong_term_support
   MicrosoftWindows Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate4185 SwEditionlong_term_support
   MicrosoftWindows Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate4416 SwEditionlong_term_support
   MicrosoftWindows Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate4726 SwEditionlong_term_support
   MicrosoftWindows Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate4959 SwEditionlong_term_support
   MicrosoftWindows Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate5137 SwEditionlong_term_support
   MicrosoftWindows Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate5394 SwEditionlong_term_support
   MicrosoftWindows Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate5512 SwEditionlong_term_support
   MicrosoftWindows Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate5810 SwEditionlong_term_support
   MicrosoftWindows Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate5995 SwEditionlong_term_support
   MicrosoftWindows Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate6313 SwEditionlong_term_support
   MicrosoftWindows Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate6690 SwEditionlong_term_support
   MicrosoftWindows Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate6860 SwEditionlong_term_support
   MicrosoftWindows Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate7119 SwEditionlong_term_support
   MicrosoftWindows Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate7303 SwEditionlong_term_support
   MicrosoftWindows Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate7476 SwEditionlong_term_support
   MicrosoftWindows Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate7719 SwEditionlong_term_support
   MicrosoftWindows Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate7943 SwEditionlong_term_support
   MicrosoftWindows Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate8137 SwEditionlong_term_support
   MicrosoftWindows Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate8268 SwEditionlong_term_support
   MicrosoftWindows Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate8438 SwEditionlong_term_support
   MicrosoftWindows Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate877 SwEditionlong_term_support
   MicrosoftWindows Version-
TrendmicroDeep Security Agent Version20.0.1 Updateupdate690 SwEditionlong_term_support
   MicrosoftWindows Version-
TrendmicroDeep Security Agent Version20.0.1 Updateupdate700 SwEditionlong_term_support
   MicrosoftWindows Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate1194 SwEditionlong_term_support
   OpengroupUnix Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate1304 SwEditionlong_term_support
   OpengroupUnix Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate1337 SwEditionlong_term_support
   OpengroupUnix Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate1559 SwEditionlong_term_support
   OpengroupUnix Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate1681 SwEditionlong_term_support
   OpengroupUnix Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate1822 SwEditionlong_term_support
   OpengroupUnix Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate1876 SwEditionlong_term_support
   OpengroupUnix Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate2009 SwEditionlong_term_support
   OpengroupUnix Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate2204 SwEditionlong_term_support
   OpengroupUnix Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate2395 SwEditionlong_term_support
   OpengroupUnix Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate2593 SwEditionlong_term_support
   OpengroupUnix Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate2740 SwEditionlong_term_support
   OpengroupUnix Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate2921 SwEditionlong_term_support
   OpengroupUnix Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate3165 SwEditionlong_term_support
   OpengroupUnix Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate3288 SwEditionlong_term_support
   OpengroupUnix Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate3445 SwEditionlong_term_support
   OpengroupUnix Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate3770 SwEditionlong_term_support
   OpengroupUnix Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate3964 SwEditionlong_term_support
   OpengroupUnix Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate4185 SwEditionlong_term_support
   OpengroupUnix Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate4416 SwEditionlong_term_support
   OpengroupUnix Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate4726 SwEditionlong_term_support
   OpengroupUnix Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate4959 SwEditionlong_term_support
   OpengroupUnix Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate5137 SwEditionlong_term_support
   OpengroupUnix Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate5394 SwEditionlong_term_support
   OpengroupUnix Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate5512 SwEditionlong_term_support
   OpengroupUnix Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate5761 SwEditionlong_term_support
   OpengroupUnix Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate5953 SwEditionlong_term_support
   OpengroupUnix Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate6313 SwEditionlong_term_support
   OpengroupUnix Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate6658 SwEditionlong_term_support
   OpengroupUnix Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate6912 SwEditionlong_term_support
   OpengroupUnix Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate7119 SwEditionlong_term_support
   OpengroupUnix Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate7303 SwEditionlong_term_support
   OpengroupUnix Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate7476 SwEditionlong_term_support
   OpengroupUnix Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate7719 SwEditionlong_term_support
   OpengroupUnix Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate7943 SwEditionlong_term_support
   OpengroupUnix Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate8137 SwEditionlong_term_support
   OpengroupUnix Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate8268 SwEditionlong_term_support
   OpengroupUnix Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate8438 SwEditionlong_term_support
   OpengroupUnix Version-
TrendmicroDeep Security Agent Version20.0 Updateupdate877 SwEditionlong_term_support
   OpengroupUnix Version-
TrendmicroDeep Security Agent Version20.0.1 Updateupdate690 SwEditionlong_term_support
   OpengroupUnix Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.1% 0.273
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 7.8 1.8 5.9
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
security@trendmicro.com 7.8 1.8 5.9
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CWE-1106 Insufficient Use of Symbolic Constants

The source code uses literal constants that may need to change or evolve over time, instead of using symbolic constants.